Mathias Sch�fer wrote:
There are two lines in pub.conf.template which I think could provide such functionality, but trying some things did not work.
## ================== [ Role Section ] ======================
RBAC_DIR "/usr/local/openca-0.9.2.1/openra/openca/etc/rbac"
ROLES_DIR "roles"
## ================= [ End Role Section ] ===================
there is one more line (looks like we have some inconsictency in names): RoleConfiguration "/usr/local/OpenCA/etc/rbac/roles.xml"
which may look like this, you can change this filename and just assign every interface its own, so it will see only the roles defined for it...
so you may have several different public-interfaces with different roles available and maybe also with access-control enabled and so on
and ra-interface may provide some more roles, so request can be changed by ra-operators to roles not public accessible...
greetings dalini
------------------------------------------------------- SF email is sponsored by - The IT Product Guide Read honest & candid reviews on hundreds of IT Products from real users. Discover which products truly live up to the hype. Start reading now. http://ads.osdn.com/?ad_ide95&alloc_id396&op=click _______________________________________________ Openca-Users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/openca-users
